Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
BID:20858
Info
Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
| Bugtraq ID: | 20858 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-5702 CVE-2006-5703 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 01 2006 12:00AM |
| Updated: | Nov 26 2006 06:05AM |
| Credit: | Securfrog is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
TikiWiki Project TikiWiki 1.9.5 Gentoo www-apps/tikiwiki 1.9.5 |
| Not Vulnerable: |
Gentoo www-apps/tikiwiki 1.9.6 |
Discussion
Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
Tikiwiki is prone to information-disclosure and cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
An attacker could leverage these issues to steal cookie-based authentication credentials or to access sensitive data. Credentials or information gained could aid in further attacks.
Version 1.9.5 is vulnerable; other versions may also be affected.
Tikiwiki is prone to information-disclosure and cross-site scripting vulnerabilities because it fails to sufficiently sanitize user-supplied input.
An attacker could leverage these issues to steal cookie-based authentication credentials or to access sensitive data. Credentials or information gained could aid in further attacks.
Version 1.9.5 is vulnerable; other versions may also be affected.
Exploit / POC
Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
An attacker can exploit these issues via a web client.
The following proofs of concept are available:
An attacker can exploit these issues via a web client.
The following proofs of concept are available:
Solution / Fix
Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
Solution:
Please see the referenced advisories for further information.
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Please see the referenced advisories for further information.
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
References
Tikiwiki Information Disclosure and Cross-Site Scripting Vulnerabilities
References:
References:
- TikiWiki Homepage (TikiWiki Project)
- Re: tikiwiki 1.9.5 mysql password disclosure & xss ([email protected])
- tikiwiki 1.9.5 mysql password disclosure & xss (securfrog)